a strange severe threat (executing commands from an attack) found suddenly in allowed list, how can find out more and what should I do?

  • Thread starter Thread starter Name Anothername
  • Start date Start date
N

Name Anothername

Guest
Found this threat labeled as severe in my allowed list(which I never allowed), I removed it from allowed list immediately and didn't find it in my protection history afterafter some digging I found the ID of the threat in regedit logs and when was it first enabled REPEATEDLY like 30 times between 7/21 and 7/22here's how it looks repeteadly during those 2 days in the logs:Microsoft Defender Antivirus Configuration has changed. If this is an unexpected event you should review the settings as this may&

Continue reading...
 

Similar threads

Back
Top